• Home
  • Search
  • Proactive Threat Intelligence and Detection Model Using Cloud-Native Security Tools
  • Cite Icon4
  • https://doi.org/10.62225/2583049x.2023.3.1.5140Copy DOI Icon

Proactive Threat Intelligence and Detection Model Using Cloud-Native Security Tools

Show More
  • Abstract
  • Literature Map
  • Citations
  • Similar Papers
Abstract

As enterprises increasingly migrate workloads to cloud platforms, the threat landscape has evolved with greater sophistication and velocity. Traditional reactive security models, reliant on post-incident response, are insufficient to address modern attack vectors such as identity compromise, misconfigured cloud services, and lateral movement within hybrid environments. This study proposes a Proactive Threat Intelligence and Detection Model leveraging cloud-native security tools to provide real-time monitoring, early threat identification, and automated mitigation. The model integrates threat intelligence feeds, machine learning, and anomaly detection to deliver predictive insights, enabling organizations to act before threats materialize into security incidents. The model begins with a data collection phase, centralizing telemetry from cloud workloads, applications, network logs, and identity services. External threat intelligence feeds augment internal data, enriching the context for detection. In the analysis phase, AI-driven correlation and behavioral analytics identify deviations from normal activity, flagging potential indicators of compromise (IoCs) and suspicious patterns. Risk scoring and prioritization mechanisms allow security teams to focus on high-impact threats, reducing alert fatigue and optimizing resource allocation. The response phase incorporates automated remediation, such as account suspension, workload isolation, or conditional access enforcement, while retaining human-in-the-loop oversight for complex scenarios. Continuous monitoring and feedback loops refine detection algorithms over time, adapting to evolving threats and organizational changes. By leveraging cloud-native security platforms—such as Microsoft Defender, AWS GuardDuty, or Google Chronicle—the model provides scalable, integrated, and real-time security coverage across IaaS, PaaS, and SaaS environments. This proactive approach enhances enterprise resilience by shifting from reactive incident response to predictive threat management. The proposed model ensures early detection, minimizes operational disruption, and supports compliance with regulatory standards. Ultimately, it positions organizations to leverage cloud-native capabilities, integrate AI-driven threat intelligence, and maintain robust, adaptive, and proactive cybersecurity frameworks in complex, hybrid, and multi-cloud environments.

Similar Papers
  • Conference Article
  • Citations12

BloTISRT

  • Dec 04, 2020
  • Shen He +5
  • Conference Article
  • Citations18

Integrating Threat Intelligence to Enhance an Organization's Information Security Management

  • Aug 27, 2018
  • Mathias Gschwandtner +3
  • Research Article
  • Citations11

OSTIS: A novel Organization-Specific Threat Intelligence System

  • Jul 19, 2024
  • Computers & Security
  • Dincy R Arikkat +6
  • Research Article
  • Citations27

Generating Quality Threat Intelligence Leveraging OSINT and a Cyber Threat Unified Taxonomy

  • May 19, 2022
  • ACM Transactions on Privacy and Security
  • Cláudio Martins +1
  • PDF
  • Research Article
  • Citations42

Distributed Security Framework for Reliable Threat Intelligence Sharing

  • Aug 01, 2020
  • Security and Communication Networks
  • Davy Preuveneers +3
  • Research Article

AGS-INTEL: Authentic & Granular Source for Data Breach Intelligence

  • Dec 04, 2025
  • International Conference on AI Research
  • Anil Parthasarathi +2
  • Research Article
  • Citations4

APT-scope: A novel framework to predict advanced persistent threat groups from enriched heterogeneous information network of cyber threat intelligence

  • Aug 17, 2024
  • Engineering Science and Technology, an International Journal
  • Burak Gulbay +1
  • Book Chapter
  • Citations8

A deep learning perspective on Connected Automated Vehicle (CAV) cybersecurity and threat intelligence

  • Feb 28, 2023
  • Manoj Basnet +1
  • Research Article
  • Citations9

Cyber Threat Intelligence: Current Trends and Future Perspectives

  • Jun 23, 2023
  • Journal of Engineering Research and Reports
  • Burak Cinar
  • Book Chapter
  • Citations1

Transformer-Based Threat Intelligence Frameworks Using BERT and GPT for Dark Web Analysis and Cybercrime Prediction

  • Mar 04, 2025
  • R Boopathi +2
  • Research Article

Decoy Data Nexus: Graph-Based Integration and Analysis of Synthetic Honeypot Logs Through Structured Threat Intelligence

  • Dec 30, 2024
  • International Journal of Computational and Experimental Science and Engineering
  • Sai Yeswanth Maturi
  • Research Article

Natural Language Processing–Driven Cybersecurity Threat Detection

  • Feb 02, 2026
  • International Journal of Innovative Science and Research Technology (IJISRT)
  • Rotimi E Ajigboye
  • Single Book

SECURING THE DIGITAL FRONTIER

  • Mar 21, 2024
  • Varun Shah +3
  • Research Article
  • Citations34

RDP-based Lateral Movement detection using Machine Learning

  • Oct 28, 2020
  • Computer Communications
  • Tim Bai +5
  • Conference Article

Optimizing Resource Allocation in Cloud Data Centers through Multi-Objective Scheduling Algorithms: A Comparative Analysis of Performance, Cost, and QoS Metrics

  • Aug 01, 2024
  • Abbas Khudhair Abbas
Cactus Communications logo

Copyright 2026 Cactus Communications. All rights reserved.